← All CVEs

CVE-2009-4009

high · 10

Buffer overflow in PowerDNS Recursor before 3.1.7.2 allows remote attackers to cause a denial of service (daemon crash) or possibly execute arbitrary code via crafted packets.

10
CVSS
17.6%
EPSS (exploit prob.)
97th
EPSS percentile
2010-01-08
Published

AV:N/AC:L/Au:N/C:C/I:C/A:C

Weaknesses

CWE-119

Affected products

VendorProductAffected versions
powerdnsrecursor<= 3.1.7.2
powerdnsrecursor2.0_rc1
powerdnsrecursor2.8
powerdnsrecursor2.9.15
powerdnsrecursor2.9.16
powerdnsrecursor2.9.17
powerdnsrecursor2.9.18
powerdnsrecursor3.0
powerdnsrecursor3.0.1
powerdnsrecursor3.1
powerdnsrecursor3.1.1
powerdnsrecursor3.1.2
powerdnsrecursor3.1.3
powerdnsrecursor3.1.4
powerdnsrecursor3.1.5
powerdnsrecursor3.1.6
powerdnsrecursor3.1.7
powerdnsrecursor3.1.7.1

Check a specific version with /api/v1/cve/match.

References

Query this programmatically:

curl https://evil-db.io/api/v1/cve/CVE-2009-4009